Question 261

A finance department employee has received a message that appears to have been sent from the Chief Financial Officer (CFO), asking the employee to perform a wire transfer. Analysis of the email shows the message came from an external source and is fraudulent. Which of the following would work BEST to improve the likelihood of employees quickly recognizing fraudulent emails?
  • Question 262

    A security analyst is attempting to utilize the blowing threat intelligence for developing detection capabilities:

    In which of the following phases is this APT MOST likely to leave discoverable artifacts?
  • Question 263

    A security analyst has noticed an alert from the SIEM. A workstation is repeatedly trying to connect to port 445 of a file server on the production network. All of the attempts are made with invalid credentials. Which of the following describes what is occurring?
  • Question 264

    Which of the following solutions is the BEST method to prevent unauthorized use of an API?